The December 2023 Security Update Review
ID: 041018e6-d028-5961-b782-24a68e997886
STIX ID: report--041018e6-d028-5961-b782-24a68e997886
Feed Name: Zero Day Initiative (ZDI) Blog
This report summarizes December 2023 security updates from Apple, Adobe, and Microsoft: Apple patched iOS/iPadOS including two WebKit CVEs reported as under active attack; Adobe released fixes across many products (notably Experience Manager XSS and Critical-rated arbitrary code execution bugs in After Effects, Illustrator, and Substance products); Microsoft released a relatively small December set including a Windows MSHTML RCE, an elevated-risk Power Platform connector issue (CVE-2023-36019, CVSS 9.6), and an Outlook information-disclosure bug — administrators are advised to prioritize updates for actively exploited and Critical-rated flaws.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
